40
Rockwell Automation Publication ICSTT-RM446N-EN-P - April 2018
Chapter 2
Functional Safety Management
If the possibility of errors cannot be eliminated, the system integrator should
make sure that procedural methods are devised and applied to detect them.
The system design should include facilities to allow field maintenance tasks can
be performed.
Each installation shall be designed to ensure that the control equipment is
operated in environments that are within its design tolerances. Therefore, the
operating environment should provide the proper control of temperature,
humidity, vibration and shock, as well as adequate shielding and earthing to
minimize that exposure to sources of electromagnetic interference and
electrostatic discharge.
Application Programming
Application programs are developed and monitored using the AADvance
Workbench software.
The development of the application software shall follow a structured
development cycle; the minimum requirements of which are:
• General Requirements: The application program shall be designed in
accordance with this safety manual and the application program safety
requirements.
• Design: Where both safety and non-safety functions are required, the
design shall ensure that the non-safety functions cannot affect the safety
functions. The design shall be structured to ensure traceability back to
the application program safety requirements and for assessment during
the FSA.
• Implementation: The implementation shall be modular to reduce
complexity, improve testability and traceability.
• Verification: Verification shall be performed and documented using a
combination of review, simulation and testing to ensure that the
application program safety requirements have been met.
System Production
The system production stage implements the detailed system design. The
production techniques, tools and equipment, including those used for
production testing of the system, shall be appropriate for the specified safety
requirements class.
System Installation Environment
The installation environment is a potential source of common cause failure,
therefore it is vital that compatibility of the equipment with the environment is
known. The environment for these purposes includes the prevailing climatic,
Содержание AADvance T9110
Страница 4: ...4 Rockwell Automation Publication ICSTT RM446N EN P April 2018 ...
Страница 10: ...10 Rockwell Automation Publication ICSTT RM446N EN P April 2018 Preface ...
Страница 44: ...44 Rockwell Automation Publication ICSTT RM446N EN P April 2018 Chapter 2 Functional Safety Management ...
Страница 116: ...116 Rockwell Automation Publication ICSTT RM446N EN P April 2018 Chapter 5 Checklists ...